vendor:
Petrol Pump Management Software
by:
Shubham Pandey
6.1
CVSS
HIGH
SQL Injection
89
CWE
Product Name: Petrol Pump Management Software
Affected Version From: 1
Affected Version To: 1
Patch Exists: NO
Related CWE: CVE-2024-27746
CPE: a:petrol_pump_management_software:1.0
Platforms Tested: Windows, Linux
2024
Petrol Pump Management Software v.1.0 – SQL Injection
The Petrol Pump Management Software version 1.0 is vulnerable to SQL Injection, allowing an attacker to execute malicious code by manipulating the email address parameter in the index.php component.
Mitigation:
To mitigate this issue, sanitize and validate user inputs to prevent SQL injection attacks.